PublicDate: 2008-02-13 21:00:00 UTC Candidate: CVE-2008-0658 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0658 https://ubuntu.com/security/notices/USN-584-1 Description: slapd/back-bdb/modrdn.c in the BDB backend for slapd in OpenLDAP 2.3.39 allows remote authenticated users to cause a denial of service (daemon crash) via a modrdn operation with a NOOP (LDAP_X_NO_OPERATION) control, a related issue to CVE-2007-6698. Ubuntu-Description: Notes: jdstrand> openldap2 source package does not ship slapd Bugs: https://bugs.launchpad.net/bugs/197077 Priority: medium Discovered-by: Assigned-to: jdstrand CVSS: Patches_openldap2.3: vendor: https://rhn.redhat.com/errata/RHSA-2008-0110.html upstream_openldap2.3: needed dapper_openldap2.3: DNE edgy_openldap2.3: DNE feisty_openldap2.3: released (2.3.30-2ubuntu0.2) gutsy_openldap2.3: released (2.3.35-1ubuntu0.2) devel_openldap2.3: not-affected Patches_openldap2.2: upstream_openldap2.2: needed dapper_openldap2.2: released (2.2.26-5ubuntu2.6) edgy_openldap2.2: released (2.2.26-5ubuntu3.3) feisty_openldap2.2: DNE gutsy_openldap2.2: DNE devel_openldap2.2: DNE Patches_openldap2: upstream_openldap2: needed dapper_openldap2: ignored edgy_openldap2: ignored feisty_openldap2: ignored gutsy_openldap2: ignored devel_openldap2: ignored